CVE-2024-23573
⚪ Do wiadomości
Atak Lucky 13 w HCL Aftermarket EPC umożliwia przeprowadzenie ataku typu man-in-the-middle.
CVSS
3.7
EPSS
0.2%
Exploit
none
Vendor
Opis źródłowy (NVD)
HCL Aftermarket EPC is vulnerable to attack since the Application is vulnerable to Lucky 13. that makes the SS LLUCKY13 possible affects the TLS1.1and 1.2 and DTLS1.0 or 1.2 implementations . It also affects previous versions such as SSL3.0 and TLS1.0. This can also be considered a type of man-in-the-middle attack.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 3.7 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.2% |
| Opublikowano (NVD) | 2026-07-17 14:17:17 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-02 00:10:00 UTC |